Plain HTTP is fine because the IP is a site-local.
I have to agree with the calls for allowing warning-less HTTP for LAN connections.
Edit: Add last sentence.
Completely flawed assumption, see the following for details:
https://realtimelogic.com/articles/How-Anyone-Can-Hack-Your-...